CVE-2026-89134

CVE-2026-89134 published: A certificate with no dNSName SAN but another SAN type present (e.g. registeredID or iPAddress) bypassed the Subject CN dNSName name-constraint check. The CN-as-DNS fallback was gated on cert->subjectCN != NULL && cert->altNames == NULL && !cert->isCA inste...

View full NVD advisory → ← Back to CVE watch